gcp-gke-legacy-master-auth

Legacy cluster basic-auth and client-certificate credentials may be returned when those deprecated mechanisms remain configured.

gcpcritical service: gcp:gke emits CanReadCredential

Where it sits

locationcontainer.projects.zones.clusters.get.masterAuth.{username,password,clientCertificate,clientKey}
location kindsecret_value
data kindscredential password private_key certificate
emits edgeCanReadCredential
serviceGKE (gcp:gke)

Collection recipe

access moderead_api
operationcontainer.projects.zones.clusters.get
response pathmasterAuth.{username,password,clientCertificate,clientKey}
encodingjson
params{"name": "\u003cresource-name\u003e"}

Required permissions

container.clusters.get

References

move · open · esc close